Логотип exploitDog
bind:CVE-2025-62353
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-62353

Количество 2

Количество 2

nvd логотип

CVE-2025-62353

4 месяца назад

A path traversal vulnerability in all versions of the Windsurf IDE enables a threat actor to read and write arbitrary local files in and outside of current projects on an end user’s system. The vulnerability can be reached directly and through indirect prompt injection.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-gxc9-77c7-jmqm

4 месяца назад

A path traversal vulnerability in all versions of the Windsurf IDE enables a threat actor to read and write arbitrary local files in and outside of current projects on an end user’s system. The vulnerability can be reached directly and through indirect prompt injection.

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-62353

A path traversal vulnerability in all versions of the Windsurf IDE enables a threat actor to read and write arbitrary local files in and outside of current projects on an end user’s system. The vulnerability can be reached directly and through indirect prompt injection.

CVSS3: 9.8
0%
Низкий
4 месяца назад
github логотип
GHSA-gxc9-77c7-jmqm

A path traversal vulnerability in all versions of the Windsurf IDE enables a threat actor to read and write arbitrary local files in and outside of current projects on an end user’s system. The vulnerability can be reached directly and through indirect prompt injection.

CVSS3: 9.8
0%
Низкий
4 месяца назад

Уязвимостей на страницу